pkgsrc-Changes-HG archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

[pkgsrc/trunk]: pkgsrc/security/gnutls Update to v3.6.8



details:   https://anonhg.NetBSD.org/pkgsrc/rev/b73f6ae5e016
branches:  trunk
changeset: 336315:b73f6ae5e016
user:      sevan <sevan%pkgsrc.org@localhost>
date:      Thu Jul 11 14:53:36 2019 +0000

description:
Update to v3.6.8

Changes
=======

* Version 3.6.8 (released 2019-05-28)

** libgnutls: Added gnutls_prf_early() function to retrieve early keying
   material (#329)

** libgnutls: Added support for AES-XTS cipher (#354)

** libgnutls: Fix calculation of Streebog digests (incorrect carry operation in
   512 bit addition)

** libgnutls: During Diffie-Hellman operations in TLS, verify that the peer's
   public key is on the right subgroup (y^q=1 mod p), when q is available (under
   TLS 1.3 and under earlier versions when RFC7919 parameters are used).

** libgnutls: the gnutls_srp_set_server_credentials_function can now be used
   with the 8192 parameters as well (#995).

** libgnutls: Fixed bug preventing the use of gnutls_pubkey_verify_data2() and
   gnutls_pubkey_verify_hash2() with the GNUTLS_VERIFY_DISABLE_CA_SIGN flag (#754)

** libgnutls: The priority string option %ALLOW_SMALL_RECORDS was added to allow
   clients to communicate with the server advertising smaller limits than 512

** libgnutls: Apply STD3 ASCII rules in gnutls_idna_map() to prevent
   hostname/domain crafting via IDNA conversion (#720)

** certtool: allow the digital signature key usage flag in CA certificates.
   Previously certtool would ignore this flag for CA certificates even if
   specified (#767)

** gnutls-cli/serv: added the --keymatexport and --keymatexportsize options.
   These allow testing the RFC5705 using these tools.

** API and ABI modifications:
gnutls_prf_early: Added
gnutls_record_set_max_recv_size: Added
gnutls_dh_params_import_raw3: Added
gnutls_ffdhe_2048_group_q: Added
gnutls_ffdhe_3072_group_q: Added
gnutls_ffdhe_4096_group_q: Added
gnutls_ffdhe_6144_group_q: Added
gnutls_ffdhe_8192_group_q: Added

diffstat:

 security/gnutls/Makefile |   4 ++--
 security/gnutls/PLIST    |   5 ++++-
 security/gnutls/distinfo |  10 +++++-----
 3 files changed, 11 insertions(+), 8 deletions(-)

diffs (63 lines):

diff -r 4c8873457a94 -r b73f6ae5e016 security/gnutls/Makefile
--- a/security/gnutls/Makefile  Thu Jul 11 14:26:09 2019 +0000
+++ b/security/gnutls/Makefile  Thu Jul 11 14:53:36 2019 +0000
@@ -1,6 +1,6 @@
-# $NetBSD: Makefile,v 1.195 2019/03/27 16:46:40 leot Exp $
+# $NetBSD: Makefile,v 1.196 2019/07/11 14:53:36 sevan Exp $
 
-DISTNAME=      gnutls-3.6.7
+DISTNAME=      gnutls-3.6.8
 CATEGORIES=    security devel
 MASTER_SITES=  ftp://ftp.gnutls.org/gcrypt/gnutls/v3.6/
 EXTRACT_SUFX=  .tar.xz
diff -r 4c8873457a94 -r b73f6ae5e016 security/gnutls/PLIST
--- a/security/gnutls/PLIST     Thu Jul 11 14:26:09 2019 +0000
+++ b/security/gnutls/PLIST     Thu Jul 11 14:53:36 2019 +0000
@@ -1,4 +1,4 @@
-@comment $NetBSD: PLIST,v 1.63 2019/03/20 06:27:11 adam Exp $
+@comment $NetBSD: PLIST,v 1.64 2019/07/11 14:53:36 sevan Exp $
 bin/certtool
 bin/gnutls-cli
 bin/gnutls-cli-debug
@@ -225,6 +225,7 @@
 man/man3/gnutls_dh_params_import_pkcs3.3
 man/man3/gnutls_dh_params_import_raw.3
 man/man3/gnutls_dh_params_import_raw2.3
+man/man3/gnutls_dh_params_import_raw3.3
 man/man3/gnutls_dh_params_init.3
 man/man3/gnutls_dh_set_prime_bits.3
 man/man3/gnutls_digest_get_id.3
@@ -523,6 +524,7 @@
 man/man3/gnutls_pkcs_schema_get_name.3
 man/man3/gnutls_pkcs_schema_get_oid.3
 man/man3/gnutls_prf.3
+man/man3/gnutls_prf_early.3
 man/man3/gnutls_prf_raw.3
 man/man3/gnutls_prf_rfc5705.3
 man/man3/gnutls_priority_certificate_type_list.3
@@ -674,6 +676,7 @@
 man/man3/gnutls_record_send_early_data.3
 man/man3/gnutls_record_send_range.3
 man/man3/gnutls_record_set_max_early_data_size.3
+man/man3/gnutls_record_set_max_recv_size.3
 man/man3/gnutls_record_set_max_size.3
 man/man3/gnutls_record_set_state.3
 man/man3/gnutls_record_set_timeout.3
diff -r 4c8873457a94 -r b73f6ae5e016 security/gnutls/distinfo
--- a/security/gnutls/distinfo  Thu Jul 11 14:26:09 2019 +0000
+++ b/security/gnutls/distinfo  Thu Jul 11 14:53:36 2019 +0000
@@ -1,9 +1,9 @@
-$NetBSD: distinfo,v 1.134 2019/03/27 16:46:40 leot Exp $
+$NetBSD: distinfo,v 1.135 2019/07/11 14:53:36 sevan Exp $
 
-SHA1 (gnutls-3.6.7.tar.xz) = 71f73b9829e44c947bb668b25b8b2e594a065345
-RMD160 (gnutls-3.6.7.tar.xz) = 0def1ae12df5f6dd30e3b2b853e0426837c6247e
-SHA512 (gnutls-3.6.7.tar.xz) = ae9b8996eb9b7269d28213f0aca3a4a17890ba8d47e3dc3b8e754ab8e2b4251e9412aaaa161a8bf56167f04cc169b4cada46f55a7bde92b955eb36cd717a99f3
-Size (gnutls-3.6.7.tar.xz) = 8153728 bytes
+SHA1 (gnutls-3.6.8.tar.xz) = e1243188791af409bca118d31faf3ec3d5f0a5ab
+RMD160 (gnutls-3.6.8.tar.xz) = a834679524f95a38a8a1ea77394906db637d33fe
+SHA512 (gnutls-3.6.8.tar.xz) = 71f0899de0ffb2a39b25928042114e2bbfde7fbf2029d9f91f60bf60794916d13f544fc97337e4e3282e7faa17e79a8012b0e08f98805bee543c0ba4e5d5a905
+Size (gnutls-3.6.8.tar.xz) = 5712580 bytes
 SHA1 (patch-lib_Makefile.in) = c9a6bbe6238ccd9de41c708012e36b202d2a86e7
 SHA1 (patch-lib_accelerated_x86_x86-common.c) = eaf3c473b1ca83c5b15be26f8c06a82d7961420c
 SHA1 (patch-src_libopts_autoopts_options.h) = 9202c55314fe8764ac82c95bbfabfa1b031e9ba4



Home | Main Index | Thread Index | Old Index